Windows events dashboard
The following image shows the analysis of the Windows event logs with sample data:
For a list of icons and operations that are common across dashboards, see Product-overview.
To view the dashboard
- From the navigation menu
, click Dashboards.
Click the Log Analytics folder and then click Windows events.
Panels in the Windows events dashboard
The following table describes the panels in the Windows events dashboard:
Panel | Description | Example |
---|---|---|
Dashboard filters | Displays the following filters to view information on the dashboard:
Provider Name is the container or task name of the source where the Windows events have occurred. By default, the dashboard displays the data for the last 24 hours. You can filter the data by using the time range global filter. | |
Log volume statistics | Displays total collected log volume and log volumes for:
| |
Log event distribution by Channel | Displays the percentage of logs collected from various channels (Security, Applications, and Systems). | |
Log event distribution by Level | Displays the percentage of logs collected for each log level (Information, Warning, and Error). | |
Log event distribution by Computer | Displays the top 5 computers from where you are collecting Windows events. | |
Log event distribution by Provider Name | Displays the number of events collected for each provider name. | |
Log event distribution volume by Event ID | Displays the log volume collected for each Event ID. | |
Log event distribution count by Event ID | Displays the number of events collected for each Event ID. |